ADVERTISEMENT

FRST.txt

Zawieszenie i zniknięcie Avast na laptopie z Win8.1 - analiza logów FRST

Witam, problem polega na tym iż zniknał program antyvisrusowy avast, przegladarka ,,ten komputer" nie reagowała, tak samo jak ctrl+alt+del spowodowało totalne zawieszenie pulpitu(komputera). Po restarcie wszystko wróciło do normy. Przesyłam logi z frst. Z góry dziękuje za pomoc.


Download file - link to post

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02.08.2018
Ran by Karool (administrator) on BOWUR (12-08-2018 19:59:59)
Running from C:\Users\Karool\Downloads
Loaded Profiles: Karool (Available Profiles: Karool)
Platform: Windows 8.1 (Update) (X64) Language: Angielski (Wielka Brytania)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Hanwang Technology Co.,Ltd. ) C:\Program Files\ASUS\ASUS FaceID\HWFaceKeyService.exe
(ASUS Cloud Corporation) C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Video DSP\DriverMFTService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\ProgramData\MobileBrServ\mbbService.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe
(Native Instruments GmbH) C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe
(AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [BTMTrayAgent] = & gt; rundll32.exe " C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll " ,TrayApp
HKLM\...\Run: [Classic Start Menu] = & gt; C:\Program Files\Classic Shell\ClassicStartMenu.exe [163800 2016-07-30] (IvoSoft)
HKLM\...\Run: [AvastUI.exe] = & gt; C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-07-21] (AVAST Software)
HKLM\...\Run: [AdobeAAMUpdater-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WebStorage] = & gt; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\ASUSWSLoader.exe [63296 2014-08-20] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM-x32\...\Run: [SwitchBoard] = & gt; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS6ServiceManager] = & gt; C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] = & gt; [X]
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] = & gt; C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe [36760 2011-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] = & gt; C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe [2904984 2011-09-05] (Adobe Systems Inc.)
HKLM-x32\...\Run: [APSDaemon] = & gt; C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [DAEMON Tools Lite Automount] = & gt; C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4701888 2016-12-22] (Disc Soft Ltd)
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [AdobeBridge] = & gt; [X]
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [ALLUpdate] = & gt; C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.)
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [Napisy24Update] = & gt; C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3709896 2015-11-04] (Napisy24.pl)
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [ALLPlayer WiFi Remote] = & gt; C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [Spotify] = & gt; C:\Users\Karool\AppData\Roaming\Spotify\Spotify.exe [24529296 2018-07-30] (Spotify Ltd)
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\Run: [uTorrent] = & gt; C:\Users\Karool\AppData\Roaming\uTorrent\uTorrent.exe [1983672 2018-05-06] (BitTorrent Inc.)
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {0fe8b54a-ed70-11e7-82b4-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {180107ca-f873-11e7-82b5-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {2a4b50f2-c830-11e6-8272-806e6f6e6963} - " F:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {34a954d7-cdeb-11e6-8277-acfdce355d26} - " G:\setup.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {3f4e5b5b-8748-11e7-82ab-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {3f4e5e93-8748-11e7-82ab-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {3f4e615a-8748-11e7-82ab-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {3f4e61a4-8748-11e7-82ab-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {4c03d4e0-657d-11e8-82c5-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {67149ba4-e41f-11e6-8281-acfdce355d26} - " E:\Setup\rsrc\autorun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {67149f3a-e41f-11e6-8281-acfdce355d26} - " F:\_AUTORUN\AUTORUN.EXE "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {84325692-c631-11e6-8271-acfdce355d26} - " F:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {9513a29c-c5fa-11e6-826e-acfdce355d26} - " F:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {9513a2f4-c5fa-11e6-826e-acfdce355d26} - " F:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {b475554c-a630-11e7-82ac-acfdce355d26} - " G:\_AUTORUN\AUTORUN.EXE "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {b687bbeb-38ba-11e7-8297-acfdce355d26} - " E:\LaunchU3.exe " -a
HKU\S-1-5-21-756321152-1871159502-821472197-1001\...\MountPoints2: {d2568aac-2676-11e7-8295-acfdce355d26} - " E:\AutoRun.exe "
HKU\S-1-5-21-756321152-1871159502-821472197-1001\Control Panel\Desktop\\SCRNSAVE.EXE - & gt; C:\Windows\system32\scrnsave.scr [11776 2014-10-29] (Microsoft Corporation)
Startup: C:\Users\Karool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2017-01-11]
ShortcutTarget: MEGAsync.lnk - & gt; C:\Users\Karool\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
Startup: C:\Users\Karool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk [2018-02-07]
ShortcutTarget: Wysyłanie do programu OneNote.lnk - & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation)
GroupPolicy: Restriction ? & lt; ==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{5885853E-C183-4614-AF7C-79050E626DA1}: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{7AE6C886-3395-48C2-8248-BAB2B4D5C201}: [DhcpNameServer] 13.5.0.88

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-756321152-1871159502-821472197-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=190
HKU\S-1-5-21-756321152-1871159502-821472197-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com/?pc=ASJB
SearchScopes: HKU\.DEFAULT - & gt; DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper - & gt; {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - & gt; C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-07-29] (Microsoft Corporation)
BHO: ExplorerBHO Class - & gt; {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - & gt; C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)
BHO: Java(tm) Plug-In SSV Helper - & gt; {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - & gt; C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2016-12-27] (Oracle Corporation)
BHO: avast! Online Security - & gt; {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - & gt; C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-07-21] (AVAST Software)
BHO: Google Toolbar Helper - & gt; {AA58ED58-01DD-4d91-8333-CF10577473F7} - & gt; C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2017-12-22] (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - & gt; {DBC80044-A445-435b-BC74-9C25C1C588A9} - & gt; C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-12-27] (Oracle Corporation)
BHO: ClassicIEBHO Class - & gt; {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - & gt; C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2016-07-30] (IvoSoft)
BHO-x32: Adobe PDF Link Helper - & gt; {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - & gt; C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-09-05] (Adobe Systems Incorporated)
BHO-x32: ExplorerBHO Class - & gt; {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - & gt; C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (IvoSoft)
BHO-x32: avast! Online Security - & gt; {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - & gt; C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-07-21] (AVAST Software)
BHO-x32: Google Toolbar Helper - & gt; {AA58ED58-01DD-4d91-8333-CF10577473F7} - & gt; C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2017-12-22] (Google Inc.)
BHO-x32: Adobe PDF Conversion Toolbar Helper - & gt; {AE7CD045-E861-484f-8273-0445EE161910} - & gt; C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
BHO-x32: ClassicIEBHO Class - & gt; {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - & gt; C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2016-07-30] (IvoSoft)
BHO-x32: SmartSelect Class - & gt; {F4971EE7-DAA0-4053-9964-665D8EE6A077} - & gt; C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2016-07-30] (IvoSoft)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2017-12-22] (Google Inc.)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2016-07-30] (IvoSoft)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll [2011-09-05] (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2017-12-22] (Google Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-29] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-29] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-29] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-29] (Microsoft Corporation)

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2017-05-17] [Legacy] [not signed]
FF Plugin: @java.com/DTPlugin,version=11.111.2 - & gt; C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-12-27] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.111.2 - & gt; C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-12-27] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - & gt; C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll [2017-06-30] ()
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf - & gt; C:\Program Files (x86)\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-09] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - & gt; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-09] (Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - & gt; C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-03-03] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - & gt; C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - & gt; C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin-x32: Adobe Acrobat - & gt; C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll [2011-09-05] (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader - & gt; C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-10] (Adobe Systems Inc.)

Chrome:
=======
CHR HomePage: Default - & gt; hxxps://2track.pro/contests/19?locale=pl
CHR StartupUrls: Default - & gt; " hxxp://www.gazeta.pl/0,0.html?p=190 "
CHR Profile: C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default [2018-08-12]
CHR Extension: (Prezentacje) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12]
CHR Extension: (Dokumenty) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
CHR Extension: (Dysk Google) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-12-20]
CHR Extension: (YouTube) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-12-20]
CHR Extension: (XV — XML Viewer) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\eeocglpgjdpaefaedpblffpeebgmgddk [2018-02-21]
CHR Extension: (Adobe Acrobat) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-06]
CHR Extension: (Avast SafePrice | Comparison, deals, coupons) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-08-12]
CHR Extension: (Arkusze) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-12-20]
CHR Extension: (Avast Online Security) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-04-20]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Gmail) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-12-20]
CHR Extension: (Chrome Media Router) - C:\Users\Karool\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-12]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ASUS FaceID Service; C:\Program Files\ASUS\ASUS FaceID\HWFaceKeyService.exe [261648 2013-10-24] (Hanwang Technology Co.,Ltd. )
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.1.11.399\AsusWSWinService.exe [71168 2014-08-20] (ASUS Cloud Corporation) [File not signed]
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7780400 2018-07-21] (AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-26] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [322464 2018-07-21] (AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-26] (AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8851496 2018-07-22] (Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168 2016-12-22] (Disc Soft Ltd)
R2 DriverMFTService; C:\Program Files (x86)\Asus\ASUS Video DSP\DriverMFTService.exe [9728 2014-10-29] (ASUSTek Computer Inc.) [File not signed]
R2 Huawei E3372; C:\ProgramData\MobileBrServ\mbbservice.exe [243800 2014-11-19] ()
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] ()
R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [121304 2014-08-07] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344976 2014-12-15] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-09] (Intel Corporation)
S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682064 2014-04-26] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-09] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [265936 2014-10-29] ()
R2 NIHardwareService; C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe [5352960 2011-04-07] (Native Instruments GmbH) [File not signed]
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [519104 2017-11-16] (NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2017-01-29] ()
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [File not signed]
S3 ThunderboltService; C:\Program Files\Intel\Thunderbolt Software\tbtsvc.exe [1179944 2014-03-06] (Intel Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3818704 2014-10-29] (Intel® Corporation)
R2 NVDisplay.ContainerLocalSystem; " C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe " -s NVDisplay.ContainerLocalSystem -f " C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log " -l 3 -d " C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem " -r -p 30000
R2 NvTelemetryContainer; " C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe " -s NvTelemetryContainer -f " C:\ProgramData\NVIDIA\NvTelemetryContainer.log " -l 3 -d " C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins " -r
R2 PaceLicenseDServices; " C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe " -u https://activation.paceap.com/InitiateActivation [X] & lt; ==== ATTENTION

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [197160 2018-07-21] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [229392 2018-07-21] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [201328 2018-07-21] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [346664 2018-07-21] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [59592 2018-07-21] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [239680 2018-07-21] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [46976 2018-07-21] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [159640 2018-07-21] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111872 2018-07-21] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [85968 2018-07-21] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1027728 2018-07-21] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [467064 2018-07-24] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [211160 2018-07-21] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [381584 2018-07-21] (AVAST Software)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [73512 2014-12-16] (ASUS Corporation)
S3 AX88772; C:\Windows\system32\DRIVERS\ax88772.sys [113864 2013-07-18] (ASIX Electronics Corp.)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [141624 2014-05-13] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1424184 2014-06-17] (Motorola Solutions, Inc.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2016-12-29] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2016-12-29] (Disc Soft Ltd)
S3 FocusriteUSB; C:\Windows\System32\drivers\FocusriteUSB.sys [87056 2018-01-09] (Focusrite Audio Engineering Ltd.)
S3 FocusriteUSBAudio; C:\Windows\system32\drivers\FocusriteUSBAudio.sys [45072 2018-01-09] (Focusrite Audio Engineering Ltd.)
R3 FocusriteUSBSwRoot; C:\Windows\System32\drivers\FocusriteUSBSwRoot.sys [88592 2018-01-09] (Focusrite Audio Engineering Ltd.)
S3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2016-11-11] (LogMeIn Inc.)
S3 hwusb_cdcacm; C:\Windows\system32\DRIVERS\ew_cdcacm.sys [124800 2014-06-11] (Huawei Technologies Co., Ltd.)
S3 hwusb_wwanecm; C:\Windows\system32\DRIVERS\ew_wwanecm.sys [379392 2014-05-04] (Huawei Technologies Co., Ltd.)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [220104 2014-08-07] (Intel Corporation)
R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [74344 2013-08-06] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [17280 2012-08-06] ( )
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [100312 2013-12-09] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3482600 2014-11-17] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30144 2017-11-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50624 2017-10-11] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [57792 2017-01-20] (NVIDIA Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [502488 2014-05-08] (Realsil Semiconductor Corporation)
S3 synusb64; C:\Windows\System32\drivers\synusb64.sys [30352 2009-06-26] (Steinberg Media Technologies GmbH)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
S3 e1edc438-f640-4184-a443-d2a7c37a01dc; \??\C:\OA30\690b33e1-0462-4e84-9bea-c7552b45432a.sys [X]
U0 msahci; system32\drivers\msahci.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-08-12 19:59 - 2018-08-12 20:00 - 000030703 _____ C:\Users\Karool\Downloads\FRST.txt
2018-08-12 19:59 - 2018-08-12 19:59 - 000000000 ____D C:\FRST
2018-08-12 19:49 - 2018-08-12 19:51 - 007395536 _____ (Malwarebytes) C:\Users\Karool\Downloads\AdwCleaner.exe
2018-08-12 19:48 - 2018-08-12 19:49 - 002412544 _____ (Farbar) C:\Users\Karool\Downloads\FRST64.exe
2018-08-12 19:46 - 2018-08-12 19:46 - 000069738 _____ C:\Users\Karool\Downloads\Niepotwierdzony 792833.crdownload
2018-08-12 00:58 - 2018-08-12 00:58 - 000000000 ____D C:\Users\Karool\Documents\Addictive Keys Logs
2018-08-12 00:53 - 2018-08-12 00:53 - 000000000 ____D C:\Users\Karool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\XLN Audio
2018-08-12 00:53 - 2018-08-12 00:53 - 000000000 ____D C:\ProgramData\XLN Audio
2018-08-12 00:49 - 2018-08-12 00:49 - 000000000 ____D C:\Users\Karool\Documents\XLN Online Installer Logs
2018-08-12 00:31 - 2018-08-12 00:39 - 038967016 _____ C:\Users\Karool\Downloads\XLN Audio - Addictive Keys 1.0.1.rar
2018-08-12 00:26 - 2018-08-12 00:26 - 000000000 ____D C:\Users\Karool\AppData\Roaming\Addictive Keys
2018-08-12 00:16 - 2018-08-12 00:16 - 000002025 _____ C:\Users\Karool\AppData\Local\recently-used.xbel
2018-08-11 13:58 - 2018-08-11 13:58 - 050803244 ____T C:\Users\Karool\Desktop\MLODY ARNOLD.wav
2018-08-11 13:58 - 2018-08-11 13:58 - 000592669 ____T C:\Users\Karool\Desktop\MLODY ARNOLD.wav.asd
2018-08-09 19:38 - 2018-08-09 19:38 - 000000000 ____D C:\Users\Karool\Desktop\BITY NA KONCERT
2018-08-07 15:28 - 2018-03-27 01:24 - 000029352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2018-08-07 15:28 - 2018-03-27 01:24 - 000019088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll
2018-08-07 15:28 - 2018-03-27 01:17 - 000030888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2018-08-07 15:28 - 2018-03-27 01:17 - 000019088 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100_clr0400.dll
2018-08-06 23:38 - 2018-08-06 23:39 - 009887729 _____ C:\Users\Karool\Downloads\Graillon-FE-2.1.zip
2018-08-06 23:36 - 2018-08-06 23:36 - 000893519 _____ C:\Users\Karool\Downloads\kerovee161.zip
2018-08-06 23:29 - 2018-08-06 23:31 - 222006723 _____ C:\Users\Karool\Downloads\maudioplugins_12_04_setup.exe
2018-08-06 21:29 - 2018-08-06 21:29 - 045158444 ____T C:\Users\Karool\Desktop\5 Dni.wav
2018-08-06 21:29 - 2018-08-06 21:29 - 000522123 ____T C:\Users\Karool\Desktop\5 Dni.wav.asd
2018-08-06 21:14 - 2018-08-06 21:14 - 045158444 ____T C:\Users\Karool\Desktop\Pięć Dni.wav
2018-08-06 21:14 - 2018-08-06 21:14 - 000521881 ____T C:\Users\Karool\Desktop\Pięć Dni.wav.asd
2018-08-06 16:04 - 2018-08-06 16:04 - 000000000 ____D C:\ProgramData\Ableton
2018-08-06 15:53 - 2018-08-06 15:53 - 000000617 _____ C:\Users\Karool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ableton Live 9 Suite.lnk
2018-08-06 15:47 - 2018-08-06 15:47 - 000000000 ___HD C:\$AV_ASW
2018-08-06 15:31 - 2018-08-06 15:44 - 000000000 ____D C:\Users\Karool\Desktop\Patch iO
2018-08-01 14:40 - 2018-08-01 14:41 - 000509509 ____T C:\Users\Karool\Desktop\piec dni.wav.asd
2018-08-01 14:40 - 2018-08-01 14:40 - 029217836 ____T C:\Users\Karool\Desktop\piec dni.wav
2018-08-01 14:18 - 2018-08-01 14:18 - 000131032 ____T C:\Users\Karool\Downloads\Beach Soundscape 3-SoundBible.com-416299667.wav.asd
2018-08-01 14:16 - 2018-08-01 14:17 - 007551664 _____ C:\Users\Karool\Downloads\Beach Soundscape 3-SoundBible.com-416299667.wav
2018-08-01 00:42 - 2018-08-01 00:42 - 004015331 _____ C:\Users\Karool\Downloads\Vinyl.zip
2018-08-01 00:39 - 2018-08-01 00:39 - 001443590 _____ C:\Users\Karool\Downloads\Vinyl Dreams VST v1.0 (1).zip
2018-08-01 00:31 - 2018-08-01 12:06 - 050425304 _____ C:\Users\Karool\Desktop\natanowe.wav
2018-08-01 00:31 - 2018-08-01 00:32 - 001443590 _____ C:\Users\Karool\Downloads\Vinyl Dreams VST v1.0.zip
2018-07-30 20:29 - 2018-07-30 20:29 - 000000000 ____D C:\Users\Karool\Desktop\JAM NARTAN 30.07
2018-07-30 01:04 - 2018-07-30 01:04 - 000846370 _____ C:\Users\Karool\Downloads\Dave Brubeck - Take Five.mp3.reapeaks
2018-07-29 15:14 - 2018-07-29 15:14 - 000002428 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-07-29 15:14 - 2018-07-29 15:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office
2018-07-26 01:16 - 2018-07-26 01:33 - 000000000 ____D C:\Users\Karool\Desktop\aaa
2018-07-25 00:36 - 2018-07-25 00:36 - 062720044 ____T C:\Users\Karool\Desktop\adam.wav
2018-07-25 00:36 - 2018-07-25 00:36 - 001081797 ____T C:\Users\Karool\Desktop\adam.wav.asd
2018-07-21 19:07 - 2018-07-21 19:07 - 000000000 ____D C:\Users\Karool\.android
2018-07-21 19:05 - 2018-07-21 19:05 - 000000000 ____D C:\Users\Karool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\humatic
2018-07-21 19:04 - 2018-07-21 19:04 - 000000000 ____D C:\Program Files (x86)\humatic
2018-07-21 19:03 - 2018-07-21 19:03 - 000378072 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2018-07-21 18:54 - 2018-07-21 19:03 - 015033348 _____ C:\Users\Karool\Downloads\MIDIHub.zip
2018-07-19 10:42 - 2018-06-12 21:01 - 000149632 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-07-19 10:42 - 2018-06-08 15:15 - 002860032 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-07-19 10:42 - 2018-06-08 15:15 - 001602048 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000783872 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000680960 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000612352 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000470016 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000443392 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-07-19 10:42 - 2018-06-08 15:15 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-08-12 19:53 - 2017-01-16 23:11 - 000000000 ____D C:\Users\Karool\AppData\Local\ClassicShell
2018-08-12 19:52 - 2016-12-19 13:25 - 000003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-756321152-1871159502-821472197-1001
2018-08-12 19:51 - 2017-01-16 22:58 - 000800996 _____ C:\Windows\system32\perfh015.dat
2018-08-12 19:51 - 2017-01-16 22:58 - 000160728 _____ C:\Windows\system32\perfc015.dat
2018-08-12 19:51 - 2014-03-18 17:26 - 001817498 _____ C:\Windows\system32\PerfStringBackup.INI
2018-08-12 19:51 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2018-08-12 19:45 - 2016-12-23 17:51 - 000000000 ____D C:\Users\Karool\AppData\Local\Spotify
2018-08-12 19:45 - 2016-12-23 17:38 - 000000000 ____D C:\Users\Karool\AppData\Roaming\Spotify
2018-08-12 19:45 - 2016-12-19 23:42 - 000000000 ___RD C:\Users\Karool\OneDrive
2018-08-12 19:45 - 2015-04-27 11:43 - 000000000 ____D C:\ProgramData\NVIDIA
2018-08-12 19:44 - 2017-12-22 22:51 - 000000000 ____D C:\ProgramData\PACE
2018-08-12 19:44 - 2016-12-19 13:20 - 000000000 ____D C:\Users\Karool
2018-08-12 19:44 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-08-12 19:43 - 2017-02-09 13:37 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2018-08-12 17:54 - 2015-04-27 12:06 - 000003480 _____ C:\Windows\System32\Tasks\ASUS Live Update1
2018-08-12 17:54 - 2015-04-27 12:06 - 000003470 _____ C:\Windows\System32\Tasks\ASUS Live Update2
2018-08-12 00:53 - 2016-12-21 00:26 - 000000000 ____D C:\Program Files (x86)\VstPlugins
2018-08-12 00:49 - 2018-06-27 00:33 - 000000000 ____D C:\Program Files\XLN Audio
2018-08-12 00:16 - 2017-02-13 17:19 - 000526336 ___SH C:\Users\Karool\Desktop\Thumbs.db
2018-08-12 00:16 - 2017-02-01 21:21 - 000000000 ____D C:\Users\Karool\AppData\Local\gtk-2.0
2018-08-12 00:16 - 2017-02-01 21:20 - 000000000 ____D C:\Users\Karool\.gimp-2.8
2018-08-11 14:50 - 2016-12-20 16:04 - 000002252 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-08-07 16:10 - 2018-05-06 11:35 - 000000000 ____D C:\Users\Karool\Desktop\12. roses
2018-08-07 16:06 - 2017-10-15 22:10 - 000000000 ____D C:\Users\Karool\Desktop\smieci a jednak sa
2018-08-07 15:34 - 2013-08-22 17:20 - 000000000 ____D C:\Windows\CbsTemp
2018-08-06 21:46 - 2016-12-22 21:44 - 001007616 ___SH C:\Users\Karool\Downloads\Thumbs.db
2018-08-06 16:10 - 2018-06-08 18:16 - 000001325 _____ C:\Users\Karool\Desktop\Ableton Live 9 Suite — skrót.lnk
2018-08-06 16:00 - 2013-08-22 15:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2018-08-06 15:55 - 2017-10-09 00:43 - 000000258 __RSH C:\ProgramData\ntuser.pol
2018-08-06 13:33 - 2017-10-09 00:43 - 000000000 ____D C:\Users\Karool\AppData\Roaming\Ableton
2018-08-01 00:58 - 2016-12-28 13:00 - 000000000 ____D C:\Users\Karool\AppData\Local\CrashDumps
2018-07-29 15:16 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-07-29 15:14 - 2016-12-20 16:15 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-07-29 15:14 - 2016-12-20 16:15 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-07-29 15:14 - 2016-12-20 16:15 - 000002431 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-07-29 15:14 - 2016-12-20 16:15 - 000002425 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-07-29 15:14 - 2016-12-20 16:15 - 000002392 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-07-29 15:14 - 2016-12-20 16:15 - 000002382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-07-29 15:12 - 2014-10-29 08:19 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-07-24 20:40 - 2018-03-26 22:23 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2018-07-24 20:23 - 2017-01-10 01:59 - 000467064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-07-21 20:10 - 2018-03-26 22:21 - 000000000 ____D C:\Users\Karool\AppData\Local\AVAST Software
2018-07-21 19:05 - 2014-10-29 08:25 - 000000000 ____D C:\ProgramData\Package Cache
2018-07-21 19:03 - 2017-11-22 12:17 - 000197160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2018-07-21 19:03 - 2017-01-10 01:59 - 000381584 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2018-07-21 19:03 - 2017-01-10 01:59 - 000211160 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2018-07-21 19:03 - 2017-01-10 01:59 - 000159640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-07-21 19:03 - 2017-01-10 01:59 - 000111872 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2018-07-21 19:03 - 2017-01-10 01:59 - 000085968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2018-07-21 19:03 - 2017-01-10 01:59 - 000046976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2018-07-21 19:02 - 2017-12-22 22:27 - 000239680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2018-07-21 19:02 - 2017-02-09 13:37 - 000346664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbloga.sys
2018-07-21 19:02 - 2017-02-09 13:37 - 000229392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2018-07-21 19:02 - 2017-02-09 13:37 - 000201328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsha.sys
2018-07-21 19:02 - 2017-02-09 13:37 - 000059592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniva.sys
2018-07-21 19:02 - 2017-01-10 01:59 - 001027728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2018-07-19 14:35 - 2017-03-22 02:53 - 000000000 ____D C:\Windows\system32\appraiser
2018-07-17 15:49 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\AppReadiness
2018-07-17 15:43 - 2016-12-30 14:36 - 000000000 ____D C:\Windows\system32\MRT
2018-07-17 15:43 - 2013-08-22 17:36 - 000000000 ___HD C:\Program Files\WindowsApps
2018-07-17 15:38 - 2016-12-30 14:35 - 134675576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-07-17 14:31 - 2013-08-22 17:36 - 000000000 ____D C:\Windows\rescache
2018-07-14 11:53 - 2016-12-19 16:34 - 000003920 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{0124A841-5DD5-41DB-846B-ABC7EE49FCA8}

==================== Files in the root of some directories =======

2017-12-22 23:33 - 2015-10-23 02:53 - 000003584 _____ () C:\Users\Karool\Drumatic 3.64.dll
2017-12-22 23:33 - 2015-10-23 02:53 - 000003584 _____ () C:\Users\Karool\minimoog V.64.dll
2017-12-22 23:33 - 2015-10-23 02:53 - 000003584 _____ () C:\Users\Karool\Predator.64.dll
2017-12-22 23:33 - 2015-10-23 02:53 - 000003584 _____ () C:\Users\Karool\Sawer.64.dll
2017-12-22 23:33 - 2015-10-23 02:53 - 000003584 _____ () C:\Users\Karool\Twist 2_x64.64.dll
2016-12-19 13:20 - 2017-10-12 20:36 - 000000125 _____ () C:\Users\Karool\AppData\Roaming\sp_data.sys
2018-08-12 00:16 - 2018-08-12 00:16 - 000002025 _____ () C:\Users\Karool\AppData\Local\recently-used.xbel

Some files in TEMP:
====================
2018-07-21 20:08 - 2018-07-26 01:21 - 003703240 _____ () C:\Users\Karool\AppData\Local\Temp\Ableton Swapper.exe

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe = & gt; File is digitally signed
C:\Windows\system32\wininit.exe = & gt; File is digitally signed
C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\explorer.exe = & gt; File is digitally signed
C:\Windows\system32\svchost.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\svchost.exe = & gt; File is digitally signed
C:\Windows\system32\services.exe = & gt; File is digitally signed
C:\Windows\system32\User32.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\User32.dll = & gt; File is digitally signed
C:\Windows\system32\userinit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\userinit.exe = & gt; File is digitally signed
C:\Windows\system32\rpcss.dll = & gt; File is digitally signed
C:\Windows\system32\dnsapi.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll = & gt; File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys = & gt; File is digitally signed

LastRegBack: 2018-08-06 13:38

==================== End of FRST.txt ============================